Логотип exploitDog
bind:"CVE-2019-0215" OR bind:"CVE-2019-0211"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2019-0215" OR bind:"CVE-2019-0211"

Количество 18

Количество 18

oracle-oval логотип

ELSA-2019-0980

больше 6 лет назад

ELSA-2019-0980: httpd:2.4 security update (IMPORTANT)

EPSS: Низкий
ubuntu логотип

CVE-2019-0215

почти 7 лет назад

In Apache HTTP Server 2.4 releases 2.4.37 and 2.4.38, a bug in mod_ssl when using per-location client certificate verification with TLSv1.3 allowed a client to bypass configured access control restrictions.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2019-0215

почти 7 лет назад

In Apache HTTP Server 2.4 releases 2.4.37 and 2.4.38, a bug in mod_ssl when using per-location client certificate verification with TLSv1.3 allowed a client to bypass configured access control restrictions.

CVSS3: 6.8
EPSS: Низкий
nvd логотип

CVE-2019-0215

почти 7 лет назад

In Apache HTTP Server 2.4 releases 2.4.37 and 2.4.38, a bug in mod_ssl when using per-location client certificate verification with TLSv1.3 allowed a client to bypass configured access control restrictions.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2019-0215

почти 7 лет назад

In Apache HTTP Server 2.4 releases 2.4.37 and 2.4.38, a bug in mod_ssl ...

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2019-0211

почти 7 лет назад

In Apache HTTP Server 2.4 releases 2.4.17 to 2.4.38, with MPM event, worker or prefork, code executing in less-privileged child processes or threads (including scripts executed by an in-process scripting interpreter) could execute arbitrary code with the privileges of the parent process (usually root) by manipulating the scoreboard. Non-Unix systems are not affected.

CVSS3: 7.8
EPSS: Высокий
redhat логотип

CVE-2019-0211

почти 7 лет назад

In Apache HTTP Server 2.4 releases 2.4.17 to 2.4.38, with MPM event, worker or prefork, code executing in less-privileged child processes or threads (including scripts executed by an in-process scripting interpreter) could execute arbitrary code with the privileges of the parent process (usually root) by manipulating the scoreboard. Non-Unix systems are not affected.

CVSS3: 8.8
EPSS: Высокий
nvd логотип

CVE-2019-0211

почти 7 лет назад

In Apache HTTP Server 2.4 releases 2.4.17 to 2.4.38, with MPM event, worker or prefork, code executing in less-privileged child processes or threads (including scripts executed by an in-process scripting interpreter) could execute arbitrary code with the privileges of the parent process (usually root) by manipulating the scoreboard. Non-Unix systems are not affected.

CVSS3: 7.8
EPSS: Высокий
debian логотип

CVE-2019-0211

почти 7 лет назад

In Apache HTTP Server 2.4 releases 2.4.17 to 2.4.38, with MPM event, w ...

CVSS3: 7.8
EPSS: Высокий
github логотип

GHSA-xpmg-8256-c52g

больше 3 лет назад

In Apache HTTP Server 2.4 releases 2.4.37 and 2.4.38, a bug in mod_ssl when using per-location client certificate verification with TLSv1.3 allowed a client to bypass configured access control restrictions.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-w9rc-q752-88hf

больше 3 лет назад

In Apache HTTP Server 2.4 releases 2.4.17 to 2.4.38, with MPM event, worker or prefork, code executing in less-privileged child processes or threads (including scripts executed by an in-process scripting interpreter) could execute arbitrary code with the privileges of the parent process (usually root) by manipulating the scoreboard. Non-Unix systems are not affected.

CVSS3: 7.8
EPSS: Высокий
fstec логотип

BDU:2019-01404

почти 7 лет назад

Уязвимость модуля MPM веб-сервера Apache HTTP, связанная с использованием памяти после её освобождения, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

CVSS3: 7.8
EPSS: Высокий
fstec логотип

BDU:2019-04409

около 7 лет назад

Уязвимость компонента mod_ssl веб-сервера Apache HTTP Server, позволяющая нарушителю обойти настроенные ограничения контроля доступа

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1258-1

почти 7 лет назад

Security update for apache2

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1209-1

почти 7 лет назад

Security update for apache2

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1190-1

почти 7 лет назад

Security update for apache2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:0878-1

почти 7 лет назад

Security update for apache2

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:0873-1

почти 7 лет назад

Security update for apache2

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2019-0980

ELSA-2019-0980: httpd:2.4 security update (IMPORTANT)

больше 6 лет назад
ubuntu логотип
CVE-2019-0215

In Apache HTTP Server 2.4 releases 2.4.37 and 2.4.38, a bug in mod_ssl when using per-location client certificate verification with TLSv1.3 allowed a client to bypass configured access control restrictions.

CVSS3: 7.5
9%
Низкий
почти 7 лет назад
redhat логотип
CVE-2019-0215

In Apache HTTP Server 2.4 releases 2.4.37 and 2.4.38, a bug in mod_ssl when using per-location client certificate verification with TLSv1.3 allowed a client to bypass configured access control restrictions.

CVSS3: 6.8
9%
Низкий
почти 7 лет назад
nvd логотип
CVE-2019-0215

In Apache HTTP Server 2.4 releases 2.4.37 and 2.4.38, a bug in mod_ssl when using per-location client certificate verification with TLSv1.3 allowed a client to bypass configured access control restrictions.

CVSS3: 7.5
9%
Низкий
почти 7 лет назад
debian логотип
CVE-2019-0215

In Apache HTTP Server 2.4 releases 2.4.37 and 2.4.38, a bug in mod_ssl ...

CVSS3: 7.5
9%
Низкий
почти 7 лет назад
ubuntu логотип
CVE-2019-0211

In Apache HTTP Server 2.4 releases 2.4.17 to 2.4.38, with MPM event, worker or prefork, code executing in less-privileged child processes or threads (including scripts executed by an in-process scripting interpreter) could execute arbitrary code with the privileges of the parent process (usually root) by manipulating the scoreboard. Non-Unix systems are not affected.

CVSS3: 7.8
90%
Высокий
почти 7 лет назад
redhat логотип
CVE-2019-0211

In Apache HTTP Server 2.4 releases 2.4.17 to 2.4.38, with MPM event, worker or prefork, code executing in less-privileged child processes or threads (including scripts executed by an in-process scripting interpreter) could execute arbitrary code with the privileges of the parent process (usually root) by manipulating the scoreboard. Non-Unix systems are not affected.

CVSS3: 8.8
90%
Высокий
почти 7 лет назад
nvd логотип
CVE-2019-0211

In Apache HTTP Server 2.4 releases 2.4.17 to 2.4.38, with MPM event, worker or prefork, code executing in less-privileged child processes or threads (including scripts executed by an in-process scripting interpreter) could execute arbitrary code with the privileges of the parent process (usually root) by manipulating the scoreboard. Non-Unix systems are not affected.

CVSS3: 7.8
90%
Высокий
почти 7 лет назад
debian логотип
CVE-2019-0211

In Apache HTTP Server 2.4 releases 2.4.17 to 2.4.38, with MPM event, w ...

CVSS3: 7.8
90%
Высокий
почти 7 лет назад
github логотип
GHSA-xpmg-8256-c52g

In Apache HTTP Server 2.4 releases 2.4.37 and 2.4.38, a bug in mod_ssl when using per-location client certificate verification with TLSv1.3 allowed a client to bypass configured access control restrictions.

CVSS3: 7.5
9%
Низкий
больше 3 лет назад
github логотип
GHSA-w9rc-q752-88hf

In Apache HTTP Server 2.4 releases 2.4.17 to 2.4.38, with MPM event, worker or prefork, code executing in less-privileged child processes or threads (including scripts executed by an in-process scripting interpreter) could execute arbitrary code with the privileges of the parent process (usually root) by manipulating the scoreboard. Non-Unix systems are not affected.

CVSS3: 7.8
90%
Высокий
больше 3 лет назад
fstec логотип
BDU:2019-01404

Уязвимость модуля MPM веб-сервера Apache HTTP, связанная с использованием памяти после её освобождения, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

CVSS3: 7.8
90%
Высокий
почти 7 лет назад
fstec логотип
BDU:2019-04409

Уязвимость компонента mod_ssl веб-сервера Apache HTTP Server, позволяющая нарушителю обойти настроенные ограничения контроля доступа

CVSS3: 7.5
9%
Низкий
около 7 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1258-1

Security update for apache2

почти 7 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1209-1

Security update for apache2

почти 7 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1190-1

Security update for apache2

почти 7 лет назад
suse-cvrf логотип
SUSE-SU-2019:0878-1

Security update for apache2

почти 7 лет назад
suse-cvrf логотип
SUSE-SU-2019:0873-1

Security update for apache2

почти 7 лет назад

Уязвимостей на страницу